Private beta — limited design-partner slots
Request access
Tiresias-ZT is in private beta. Tell us about your agents and the backend you want to govern — we'll follow up directly to set up a design-partner engagement.
How it works
1
Send us your details and what you want to govern.
2
We follow up to scope a design-partner engagement.
3
You deploy the proxy in your infrastructure and govern from the portal.
What's in the platform
Identity, detection, and enforcement - in front of your own backend.
SoulAuth
Agent Identity & Zero-Trust Access
- Cryptographic SoulKey agent identities
- Zero-trust policy evaluation (PDP/PEP)
- Capability-token introspection
- Key lifecycle - issue, rotate, suspend, revoke
- RBAC: Platform → MSSP → Tenant → Agent
- OIDC single sign-on
SoulWatch
Behavioral Anomaly Detection
- Per-agent behavioral baselines
- Anomaly detection across the fleet
- Automated quarantine of misbehaving agents
- Usage metering with a cost / budget governor
- SoulKey-signed, tamper-evident audit trail
- Monitor-first rollout before enforcement
SoulGate
Deny-by-Default Policy Enforcement
- Reverse proxy in front of memory / MCP backends
- Deny-by-default policy at the request layer
- Prompt-injection screening
- No LLM in the decision path
- Sovereignty-gated reads (never-cloud stays local)
- Full request audit logging
Self-hosted, your data
The proxy runs in your infrastructure. Bring your own backend - data never leaves your store.
Full platform access
Design partners get the complete platform - identity, detection, and enforcement.
Direct line to the team
Design partners work directly with the engineering team and shape the roadmap.